The Straightforward Buyer’s Guide to EDR | eBook
Picking the right EDR solution just got easier. In order to combat today’s threats, businesses need endpoint detection and response (EDR). But how do you…
Picking the right EDR solution just got easier. In order to combat today’s threats, businesses need endpoint detection and response (EDR). But how do you…
UPDATE 03/13/2023 2252 ET: After taking further inventory of our partner’s Veeam service binary details to review the version number, we uncovered many more unpatched…
A first-class data model for the next generation of findings AI-driven code security is becoming a real category. Anthropic’s Claude Code Security and OpenAI’s Codex…
Every SOC analyst knows the drill: an alert fires, and the next ten minutes are spent switching between a triage dashboard, a threat hunt, a…
See Huntress in action. Engineering Defence In February 2022, Microsoft announced that due to how pervasive the use of “weaponized” documents were, they were going…
Huntress has been tracking CVE-2023-23397, a critical vulnerability/0-day that impacts Microsoft Outlook. Unlike other exploits we’ve seen in the past, this exploit is particularly dangerous…
All too often, I blindly ‘Accept’ Terms & Conditions without reading them. Guilty! Yes, it’s come back to bite me before, but I can’t be…
Ah, cybersecurity for mid-sized businesses in 2023. It’s like the Wild West, except we’ve got hackers and data breaches instead of cowboys and outlaws. It’s…
The 3CX VoIP Desktop Application has been compromised to deliver malware via legitimate 3CX updates. Huntress has been investigating this incident and working to validate…
In a previous life before joining Huntress, I was a Splunk administrator and architect. Over time I noticed a few features/behaviors of Splunk that I…
G’Day and Kia Ora, (Yep, you guessed it!) Let me introduce myself. I’m Reece, Regional Director of Huntress ANZ, located in Sydney, and I’m incredibly…
Our team is tracking in-the-wild exploitation of zero-day vulnerabilities against PaperCut MF/NG which allow for unauthenticated remote code execution due to an authentication bypass. UPDATE…